apache/fory follows the Apache Software Foundation security process. Please report suspected
vulnerabilities privately to security@apache.org; do not open public
GitHub issues or pull requests for security reports.
User-facing guidance is product-specific:
For detailed implementation classification rules for untrusted deserialization, see the Deserialization Security Model.